| Question | |
| How do I submit a virus sample to an AntiVirus Vendor? |
|
| Solution | |
| Submitting a virus sample to an AntiVirus vendor is straight forward. The following describes the best way to perform this. Firstly before submitting to a the AntiVirus vendor make sure that you have the very latest virus definition files for you AntiVirus software. Perform a virus scan of your entire system, ensure that you scan 'All Files' both executable and data files. If you do not have AntiVirus software then some vendors provide free online virus scanning and/or trial versions of their Virus Scanners that you can use to perform a scan. If you still believe you have a file that contains a virus, trojan or is malicious that is not known to a Virus scanner you can submit the sample to AntiVirus vendors for analysis. The safest way to send this file is to Zip the file within a password protected Zipfile. By default the password should be 'infected' without quotes. However the password choice is left to the user and the detail of this password should be included with the email that file is attached to. To create a Zipfile you can use either Winzip or PKZIP. It is also useful to create a MD5 hash or PGP Signature of the Zipfile to ensure that it has not been tampered or damaged during transmission. The MD5 hash can be created using MD5SUM. The email should have the following information within it.
For operating system details ensure that you include the following information. The exact version number e.g. for Windows 2000 Pro, Version 5.0 (Build 2195, Service Pack 2), also include details of any patches or hotfixes for the OS. Common installed applications details such as Internet Explorer version information, Email client version information again include patches and hotfix information. This will assist the AV Vendor. Some AV Vendors publish their Public Keys which can be used for encrypting the email that is sent to them too. Once you have everything together to can send the virus sample to the following AntiVirus Vendors, also send it to your own AV vendor if not listed here as well. Command AntiVirus
Computer Associates
F-Secure
Kaspersky AntiVirus
Network Associates
SARC
Trend Micro Email: virus_doctor@trendmicro.com |
|
| FAQ Details | |
| Category | Computer Malware |
| Keywords | Submit a Sample |
| Helpful? | Yes | No Score: 12 |
| Views | 1539 |
| Related Articles |
|

